Indicators lookup windows
Kaspersky Threat Feed App for Splunk provides separate windows for looking up indicators of the following types:
URLs and domains are looked up in the following feeds:
- Malicious URL Data Feed
- Phishing URL Data Feed
- BotnetCnC URL Data Feed / Demo BotnetCnC URL Data Feed
- Mobile Botnet Data Feed
- Ransomware URL Data Feed
IP addresses are looked up in the following feed:
- IP Reputation Data Feed / Demo IP Reputation Data Feed
Hashes are looked up in the following feeds:
- Malicious Hash Data Feed / Demo Malicious Hash Data Feed
- BotnetCnC URL Data Feed / Demo BotnetCnC URL Data Feed
- Mobile Malicious Hash Data Feed
- P-SMS Trojan Data Feed
- IP Reputation Data Feed / Demo IP Reputation Data Feed
- Malicious URL Data Feed
- Ransomware URL Data Feed
- Mobile Botnet Data Feed
After an indicator is looked up in the feeds, the search result is displayed in tables.
Page top